Overview
Enterprise-Grade Network Security: Hardened for the AWS Cloud In 2026, network visibility is the foundation of a Zero Trust architecture. AdvanceCo Inc provides a production-ready deployment of Suricata 9, the industry leading open-source network threat detection engine, packaged specifically for the Amazon Web Services ecosystem. This AMI removes the operational burden of manual setup. Built on a stable Ubuntu 22.04 LTS foundation, this solution is tuned to leverage AWS features like VPC Traffic Mirroring and Nitro-based instance acceleration. Key Capabilities: Advanced Engine Architecture: Suricata 9 utilizes multi-threading to exploit 100 percent of your multi-core CPU resources. Deep Protocol Analysis: Beyond simple signature matching, Suricata provides metadata extraction for HTTP, DNS, TLS, and SMB traffic. Modern Encryption Visibility: Enhanced handling of QUIC and TLS 1.3 ensures you maintain visibility into modern encrypted streams. Hardened Security: This build includes specific kernel-level optimizations to handle high-velocity traffic spikes without packet loss. The AdvanceCo Advantage: Choosing our supported AMI means you have a partner for your security infrastructure. Our Raleigh-based team provides: Quarterly Maintenance: We handle Ubuntu kernel security patches and Suricata binary updates. SIEM Integration: EVE JSON output is ready for ingestion into any modern observability platform. Performance Tuning: Includes specific configurations not found in community builds for high-throughput networking. Ideal Use Cases: Regulatory Compliance: Quickly satisfy requirements for network monitoring in HIPAA and PCI DSS environments. Cost-Effective Scalability: A powerful alternative to managed firewall services for organizations requiring granular control. Threat Hunting: Use Network Security Monitoring features to analyze network behavior in real-time.
Highlights
- Suricata 9 Engine Upgrade: Next-generation visibility for QUIC and TLS 1.3 protocols to secure modern encrypted traffic. Performance Tuned: Pre-configured AF-PACKET settings and 128k block sizes for high-speed AWS networking and reduced CPU overhead.
- LDAP and SIP Inspection: Full visibility into lateral movement and voice traffic with native LDAP and SIP over TCP parsers.
- Compliance Ready: EVE JSON logging format for instant integration with AWS Security Hub and meeting PCI DSS 4.0 or SOC 2 audits. Professional Support: Includes OS and software maintenance from the AdvanceCo US-based engineering team.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
Free trial
Dimension | Cost/hour |
|---|---|
m5.large Recommended | $0.02 |
m8i.96xlarge | $0.02 |
m8id.16xlarge | $0.02 |
m8i-flex.4xlarge | $0.02 |
m7i.xlarge | $0.02 |
m8i.32xlarge | $0.02 |
t3.xlarge | $0.02 |
m8id.large | $0.02 |
m8i.xlarge | $0.02 |
m8id.8xlarge | $0.02 |
Vendor refund policy
Product provided as is. Refund is not offered.
Custom pricing options
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Update to protect against copy fail
Additional details
Usage instructions
SSH using user Ubuntu
Resources
Vendor resources
Support
Vendor support
Professional Support: Includes OS and software maintenance from the AdvanceCo US-based engineering team.Paid telephone, slack, and software maintenance support is available to customers requiring supported open source products. Find us at https://www.advancecoinc.com/aws-marketplace.html Contact us at secproductsupport@advancecoinc.com
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.